Описание
Open redirect vulnerability in Tornado versions 6.3.1 and earlier allows a remote unauthenticated attacker to redirect a user to an arbitrary web site and conduct a phishing attack by having user access a specially crafted URL.
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support, was needs-triage |
devel | not-affected | 6.3.2-1 |
esm-apps/bionic | released | 4.5.3-1ubuntu0.2+esm1 |
esm-apps/focal | released | 6.0.3+really5.1.1-3ubuntu0.1~esm1 |
esm-apps/jammy | released | 6.1.0-3ubuntu0.1~esm1 |
esm-infra/xenial | released | 4.2.1-1ubuntu3.1+esm1 |
focal | ignored | end of standard support, was needed |
jammy | needed | |
kinetic | ignored | end of life, was needs-triage |
lunar | released | 6.2.0-3ubuntu0.1 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support, was needs-triage |
devel | DNE | |
esm-apps/bionic | needs-triage | |
esm-apps/jammy | needs-triage | |
esm-apps/xenial | needs-triage | |
esm-infra-legacy/trusty | needs-triage | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | needs-triage | |
kinetic | ignored | end of life, was needs-triage |
Показывать по
EPSS
6.1 Medium
CVSS3
Связанные уязвимости
Open redirect vulnerability in Tornado versions 6.3.1 and earlier allows a remote unauthenticated attacker to redirect a user to an arbitrary web site and conduct a phishing attack by having user access a specially crafted URL.
Open redirect vulnerability in Tornado versions 6.3.1 and earlier allows a remote unauthenticated attacker to redirect a user to an arbitrary web site and conduct a phishing attack by having user access a specially crafted URL.
Open redirect vulnerability in Tornado versions 6.3.1 and earlier allo ...
EPSS
6.1 Medium
CVSS3